ISP-managed inbound connectivity

Give customers secure inbound access—even behind CGNAT

BringMeOnline helps Internet Service Providers deliver managed TCP and UDP access for cameras, VPNs, remote systems, IoT devices, and other services behind CGNAT—without assigning a dedicated public IPv4 address to every customer.

Port-level connectivity • TCP & UDP • ISP-controlled • Auditable
The CGNAT gap

CGNAT conserves IPv4—but inbound access can disappear

Cameras become unreachable, remote access stops, and support teams face requests for dedicated IPv4 addresses. BringMeOnline turns that gap into a governed service.

Customer experience

Restore approved access to cameras, VPNs, servers, and devices.

IPv4 conservation

Serve many mappings through ISP-managed public IP and port pools.

Operational control

Apply policy, automate changes, and retain a complete audit history.

A managed ISP service

Five steps from request to synchronized mapping

01

Connect the ISP

Choose an approved deployment path and define network policy.

02

Synchronize subscribers

Associate RADIUS identity with the current CGN subscriber address.

03

Create a mapping

Select an internal port and protocol; allocate a conflict-free public port.

04

Configure A10 safely

Apply a reviewed change through AXAPI, connector, or deployment package.

05

Keep it synchronized

Reconcile eligible mappings when subscriber addresses change.

Built for ISP outcomes

More service value. Less manual network work.

Create recurring revenue, reduce CGNAT-related complaints, retain customers, and automate provisioning through the tools your teams already use.

Preserve public IPv4
Reduce support workload
Centralize control
Integrate billing
Enforce service limits
Maintain audit history
Support multiple POPs
Offer optional self-service
TCPControlled services
UDPPolicy-approved mappings
APISystem automation
24/7State reconciliation
Customer use cases

Access the service—not an entire public IP

Security cameras

A controlled public endpoint mapped to an approved internal TCP or UDP service, subject to ISP policy.

Remote desktop

A controlled public endpoint mapped to an approved internal TCP or UDP service, subject to ISP policy.

SSH

A controlled public endpoint mapped to an approved internal TCP or UDP service, subject to ISP policy.

VPN servers

A controlled public endpoint mapped to an approved internal TCP or UDP service, subject to ISP policy.

Web applications

A controlled public endpoint mapped to an approved internal TCP or UDP service, subject to ISP policy.

IoT & automation

A controlled public endpoint mapped to an approved internal TCP or UDP service, subject to ISP policy.

Game servers

A controlled public endpoint mapped to an approved internal TCP or UDP service, subject to ISP policy.

Business systems

A controlled public endpoint mapped to an approved internal TCP or UDP service, subject to ISP policy.

Integrations

Designed to fit the ISP environment you already operate

A10 Networks, RADIUS, REST APIs, signed webhooks, CRM, OSS/BSS, billing platforms, and customer portals work together around controlled desired state.

A10 Networks

Connect through an ISP-approved integration path.

RADIUS

Connect through an ISP-approved integration path.

REST API

Connect through an ISP-approved integration path.

Webhooks

Connect through an ISP-approved integration path.

CRM

Connect through an ISP-approved integration path.

OSS/BSS

Connect through an ISP-approved integration path.

API automation

Provision from the systems you already use

Your CRM or OSS/BSS can create a service, receive an allocated port, and track completion through an API or webhook—without requiring customer action.

CRM / OSS-BSS
  ↓ create service
BringMeOnline API
  ↓ desired state
Provisioning queue → A10 integration
  ↓
Signed webhook result
Ready to get started?

Offer more connectivity without consuming one public IPv4 address per customer.